Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

VP, Lead Security Risk Analyst

$145k - $170k

Banc of California

Pay or shift range: $145,000 USD to $170,000 USD

The base salary ultimately offered is determined through a review of education, industry experience, training, knowledge, skills, abilities of the applicant in alignment with market data and other factors.

Description

BANC OF CALIFORNIA AND YOUR CAREER

Banc of California, Inc. (NYSE: BANC) is a bank holding company with over $34 billion in assets and the parent company of Banc of California. Banc of California is one of the nation’s premier relationship-based business banks, providing banking and treasury management services to small, middle market, and venture backed businesses. As the largest independent bank headquartered in California, the bank offers a broad range of loan and deposit products and services through a network of full-service branches and regional offices, as well as through digital and nationwide capabilities. The bank also provides full-service payment processing solutions to its clients and serves the Community Association Management industry nationwide through its technology forward platform, SmartStreet™. Banc of California is committed to supporting its local communities through the Banc of California Charitable Foundation and by partnering with organizations that promote financial literacy, job training, small business support, affordable housing, and more.

At Banc of California, our success is powered by our people and a shared commitment to delivering meaningful results. We foster an environment where entrepreneurial thinking is encouraged, and accountability and operational excellence are expected. Our team members are empowered to take ownership, make informed decisions, and make a meaningful impact as the bank continues to grow and evolve. We are dedicated to supporting your growth and wellbeing through comprehensive benefits, robust development opportunities, and inclusive programs that enable you to perform at your best. Together we win!

THE OPPORTUNITY

The VP, Lead Security Risk Analyst leads enterprise-wide Information Security risk engagement across corporate initiatives, embedding security-by-design principles into business and technology decisions. This role drives the development and execution of the Information Security risk and GRC programs, conducting complex, high‑impact risk assessments across enterprise architecture, cloud, AI/ML, and third‑party environments. Serving as a senior advisor, the position partners with leadership, architects, and engineering teams to translate regulatory and security requirements into actionable architectural controls and secure design standards. The VP, Lead Security Risk Analyst also drives cross‑functional remediation efforts to ensure risks are effectively managed in alignment with the organization’s risk appetite. Performs all duties in accordance with the Company’s policies and procedures, all U.S. state and federal laws and regulations, wherein the Company operates.

HOW YOU’LL MAKE A DIFFERENCE

  • Lead enterprise Information Security engagement across all enterprise-wide corporate projects, championing security by design principles, influencing security decisions without direct authority and driving alignment across multiple business and technology domains.

  • Contribute to the development, management, and ongoing improvement of the Information Security risk program, compliance initiatives, and overall security risk posture.

  • Partner with senior management to design and implement maturity strategies and operations into the Information Security GRC team.

  • Maintain Information Security risk register, report monthly to appropriately address key risk areas.

  • Support policies and procedures maintenance aligned with in-scope security frameworks, regulations, and internal standards to manage identified risk effectively.

  • Conduct regular risk assessments to identify potential threats and vulnerabilities across the organization analyzing their impact and likelihood of occurrence.

  • Generate reports on risk assessments, compliance status, and control effectiveness to communicate findings to stakeholders at various levels within the organization.

  • Lead and deliver enterprise and domain risk assessments (at least annually, or event driven) using consistent methodology that complies with regulatory requirements

  • Conduct and lead the bank’s most complex and high-impact risk assessments, including those involving enterprise architecture, modernization initiatives, AI/ML platforms, cloud deployments, or third-party integrations.

  • Drive cross-functional remediation initiatives, ensuring timely resolution of identified issues and alignment with enterprise risk appetite.

  • Act as the primary GRC representative and senior advisor in enterprise security architecture projects, ensuring that security, compliance, and risk considerations are embedded in design decisions for cloud, infrastructure, and applications.

  • Lead architecture-focused risk assessments for new technologies, major system integrations, cloud migrations, and high-impact projects to identify systemic risks and required compensating controls.

  • Translate security policies, standards, regulatory requirements and control frameworks into detailed architectural requirements, control patterns, and secure design standards consumable by engineering and application teams.

  • Advise solution architects, engineers, and product teams on secure design patterns, identity and access architecture, encryption frameworks, data protection requirements, and logging/monitoring standards.

  • Evaluate the security implications of modernization initiatives, and system migrations ensuring risks are documented and mitigated through appropriate design.

  • Define architecture-aligned security requirements and control baselines that engineering and architecture teams use to build secure-by-design systems.

  • Partner with detection engineering and cloud teams to ensure logging, auditability, and monitoring capabilities are embedded in the technology stack.

  • Lead complex and technical vendor security reviews, including onboarding assessments, and high-risk assessments involving cloud platforms, data integrations, and critical infrastructure providers.

  • Follow all established policies and procedures.

  • Perform other duties and projects as assigned.

WHAT YOU’LL BRING

  • Bachelor’s degree in information systems, engineering, business, risk management, or related field; and related certifications (e.g., CISSP ISSAP, SABSA, CCSP, GCAD, CRISC, CISSP).

  • 7-9+ years of experience in GRC, cybersecurity, risk management or related fields, and most importantly cloud/security architecture, particularly in highly regulated industries such as financial, or professional services.

  • Demonstrated history of influencing architectural decisions and driving enterprise-level security program improvements.

  • High technical knowledge across Cybersecurity domains, including Security Operations, Incident

  • Response, Security Engineering, Cloud Security, Artificial Intelligence (AI), Data Security, Configuration

  • Management, Log Generation, Security Risk Assessments/testing methodologies, Secure Software Development Lifecycle, evaluating the adequacy and efficiency of internal controls.

  • Advanced knowledge of cloud architecture, application security, identity governance, encryption, secure design patterns, network architecture, and telemetry design.

  • Experience translating requirements into architectural controls and technical standards.

  • Expert knowledge of GRC frameworks and regulations (e.g., PCI-DSS, GDPR, CCPA, GLBA, NIST, ISO 27001).

  • Strong knowledge in OWASP, CIS and/or other security standards and secure configuration baselines.

  • Excellent analytical skills with the ability to assess complex risks and develop effective mitigation security strategies.

  • Comfortable solving ambiguous, enterprise-scale problems.

  • Proven ability to lead multi-team initiatives and drive results in a fast-paced environment.

  • Excellent communication and interpersonal skills, with the ability to influence senior engineers, architects, and business leaders

  • High School diploma or equivalent required

HOW WE’LL SUPPORT YOU

  • Financial Security: You will be eligible to participate in the company’s 401k plan which includes a company match and immediate vesting.

  • Health & Well-Being: We offer comprehensive insurance options including medical, dental, vision, AD&D, supplemental life, long-term disability, pre-tax Health Savings Account with employer contributions, and pre-tax Flexible Spending Account (FSA).

  • Building & Supporting Your Family: Banc of California partners with providers that offer adoption, surrogacy, and fertility assistance as well as paid parental leave and family support solutions including care options for your family.

  • Paid Time Away: Eligible team members receive paid vacation days, holidays, and volunteer time off.

  • Career Growth Opportunities: To support career growth of our team members, we offer tuition reimbursement, an annual mentorship program, leadership development resources, access to LinkedIn Learning, and more.

SALARY RANGE

The base salary ultimately offered is determined through a review of education, industry experience, training, knowledge, skills, abilities of the applicant in alignment with market data and other factors.

Banc of California is an equal opportunity employer committed to creating a diverse workforce. All qualified applicants will receive consideration for employment without regard to their actual or perceived race (including traits associated with race, such as hair texture, hair type or protective hairstyles), religion or religious creed (including religious dress and grooming practices), color, sex (including pregnancy, childbirth, breastfeeding and related medical conditions), sexual orientation, gender, gender identity, gender expression, gender transitioning, citizenship status, national origin, ancestry, age, marital status, military or veteran status, medical condition, genetic information, or disability (mental or physical), requests for accommodation and any additional protected categories set forth in applicable federal, state or local laws. If you require reasonable accommodation as part of the application process, please contact Talent Acquisition.

Equal Opportunity Employer

This employer is required to notify all applicants of their rights pursuant to federal employment laws.

For further information, please review the Know Your Rights ( notice from the Department of Labor.

Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the VP, Lead Security Risk Analyst in Los Angeles, CA vacancy
  • $1,100 per month

    Oman OnlineConnect is seeking a Senior Information Security Analyst to develop and implement security policies and procedures. This full-time role based in Los Angeles involves conducting risk assessments and monitoring network activities. The ideal candidate should have... 
    Suggested
    Full time
    Visa sponsorship

    Oman OnlineConnect

    Los Angeles, CA
    4 days ago
  • A leading technology firm in Los Angeles is seeking an Information Security Analyst for a 12+ month hybrid contract. In this hands-on role, you will work within the Information...  ...security services and manage cybersecurity risk. You are expected to support vendor... 
    Suggested
    Contract work

    iSpace, Inc.

    Los Angeles, CA
    2 days ago
  • $140k - $160k

     ...Skydance is looking for a Lead Information Security Analyst skilled in working within the games industry to work with the infrastructure team to implement...  ...for the company. Create and manage process to perform risk reviews of requested software licenses. Maintain close... 
    Suggested
    Remote work

    Skydance

    Santa Monica, CA
    1 day ago
  • Skydance is seeking a Lead Information Security Analyst based in Santa Monica, California, to enhance the security posture within the games industry...  ...Responsibilities include developing security strategies, managing risk reviews, and coordinating with the infrastructure team to... 
    Suggested
    Remote job

    Skydance

    Santa Monica, CA
    5 days ago
  • Overview Skydance is looking for a Lead Information Security Analyst skilled in working within the games industry to work with the infrastructure team...  ...for the company. Create and manage process to perform risk reviews of requested software licenses. Maintain close coordination... 
    Suggested
    Remote work

    Skydance

    Santa Monica, CA
    5 days ago
  • A growing IT service provider in Los Angeles is looking for a full-time IT Security Analyst for a contract role. Candidates should have experience with 3rd Party Risk Assessment and Compliance/SOX/Audit, along with CISA or CISSP certifications. This position offers an opportunity... 
    Full time
    Contract work

    USM

    Los Angeles, CA
    3 days ago
  •  ...seeks a motivated, career and customer-oriented Acquisition Security Analyst (ASA) II to join our team in El Segundo, CA. The Acquisition...  ...implementing countermeasures. Developing and implementing risk management-based program protection plans, strategies, and specific... 
    Contract work
    Work at office
    Remote work

    MANTECH

    El Segundo, CA
    58 minutes ago
  • $94.2k - $141.2k

     ...employees are not only part of history, they're making history. Northrop Grumman Aeronautics Systems is seeking a Industrial Security Analyst / CSSO - Level 3 or 4 to support the restricted programs at Redondo Beach and El Segundo Campuses. The responsibilities... 
    For contractors
    Relocation
    Shift work

    Northrop Grumman

    El Segundo, CA
    2 days ago
  • $125k - $175k

     ...actively developing the technologies to make this possible, with the ultimate goal of enabling human life on Mars. SR. INDUSTRIAL SECURITY ANALYST (CSSO/CPSO) SpaceX is looking for a multidisciplinary Industrial Security Officer to serve as a Senior Security Analyst... 
    Permanent employment
    Temporary work
    For subcontractor
    Work at office
    Weekend work

    SpaceX

    Hawthorne, CA
    2 days ago
  • $95k - $115k

     ...SpaceX is actively developing the technologies to make this possible, with the ultimate goal of enabling human life on Mars. SECURITY ANALYST (DETECTION AND INCIDENT RESPONSE) As a Security Analyst at SpaceX, you are on the frontline of our information security... 
    Permanent employment
    Temporary work
    Remote work
    Weekend work

    SpaceX

    Hawthorne, CA
    3 days ago
  • $108.1k - $145.2k

     ...Acquisition Security Analyst (ASA) II K2 Group is seeking an Acquisition Security Analyst (ASA) II to support a USAF customer located in...  ...implementation of countermeasures Develop and implement a risk management-based program protection plan and strategy Provide... 
    Contract work
    Temporary work
    For contractors
    Work experience placement
    Work at office

    K2 Group

    El Segundo, CA
    1 day ago
  •  ...Position: N etwork Security Analyst Location: Downey, CA Duration: 12 Months The Consultant must meet all the following...  ...performing computer and network forensic investigations and leading a computer security incident response team. 3. Two (2... 

    West Advanced Technologies

    Downey, CA
    1 day ago
  • $118.31k - $177.47k

     ...Senior Offensive Security & Exposure Management Analyst Location: This role requires associates to be in-office...  ...behavior, and drive measurable risk reduction. You’ll partner closely with...  ...resolution on complex problems and leads implementations for system and network... 
    Temporary work
    Work experience placement
    Work at office
    Local area
    2 days per week
    1 day per week

    Elevance Health

    Los Angeles, CA
    3 days ago
  •  ...Exciting Security Analyst / Engineer - Threat & Cortex XSIAM (Hybrid) Requirements ~3 plus years of experience in cyber security or related discipline. ~ SIEM, Cortex XSIAM, correlation, and threat monitoring ~ Understands the following concepts: confidence intervals... 
    Remote work

    Wavestrong

    Los Angeles, CA
    11 days ago
  •  ...USC/GC The client is seeking an Application Security Analyst to • Conduct manual application security assessments using dynamic and...  ...practices • Ability to appropriately determine and communicate the risk associated with assessment findings • Author assessment... 
    Work experience placement

    RIT Solutions, Inc.

    Glendale, CA
    5 days ago
  • $63k - $94.6k

     ...Aeronautics Sector (NGAS) is seeking an Associate Industrial Security Analyst (Level 1) or Industrial Security Analyst (Level 2) to join our...  ..., physical, information, and operations security; assist with risk mitigation and incident response. Assist with development, implementation... 
    For contractors
    Work at office
    Relocation
    Shift work

    Northrop Grumman

    El Segundo, CA
    5 days ago
  • $90k - $120k

     ...Information Security Analyst II The Marvin Group is a Strategic Partner for Global Alternate...  ...Equipment and Sustainment. The Marvin Group, a leading defense contractor, plays a crucial role...  ...threats. Conducts audits and risk assessments. Develops and implements... 
    Permanent employment
    Contract work
    For contractors
    Work experience placement
    Work at office
    Flexible hours

    The Marvin Group

    Inglewood, CA
    1 day ago
  • $95k - $115k

     ...actively developing the technologies to make this possible, with the ultimate goal of enabling human life on Mars. INFORMATION SECURITY ANALYST We are looking for an Information Security Analyst to join our Information Security team. This role is the operational... 
    Permanent employment
    Temporary work
    Remote work
    Weekend work

    SpaceX

    Hawthorne, CA
    3 days ago
  • $88.99k - $125k

     ...you passionate about cybersecurity, risk management, and building stronger security programs in highly regulated...  ...Information Technology Security Analyst to help strengthen and evolve our...  ...vendor security documentation Lead Business Impact Assessments and support... 
    Work experience placement
    Work at office
    Monday to Friday

    Northrop Grumman Federal Credit Union

    Gardena, CA
    1 day ago
  •  ...Title: Information Security Analyst Role Overview: The Information Security Analyst is a hands-on role within the Information Security function...  ...of security services. This position focuses on third-party risk management, security assessments, and the integration of security... 
    Work at office
    Local area

    Vaco

    Los Angeles, CA
    8 hours ago
  • IT Security Analyst - EAD or GC or USC ONLY Full-time, Los Angeles, CA, 1-2 year contract. USM Business Systems Inc. is a quickly developing...  ...Analyst - EAD or GC or USC ONLY The main skills: 3rd Party Risk Assessment Compliance/SOX/Audit Experience CISA or CISSP Certification... 
    Full time
    Contract work
    Worldwide

    USM

    Los Angeles, CA
    2 days ago
  •  ...days remote) Travel: Initial training in Germany after hire, plus 3-4 trips to Germany per year About the Role We're seeking a Security Analyst to partner closely with development and product teams to ensure the secure operation of our global ticketing platform. In this... 
    Work at office
    Local area
    Remote work

    Eventim USA

    Los Angeles, CA
    2 days ago
  • $37.3 - $50 per hour

     ...pursuing personal growth. We are seeking an Sr. Information Security Analyst to join our team. Come grow with us and be part of the SAG-AFTRA...  ...security program and processes to help mitigate overall risks to the organization. The Information Security Analyst will be... 
    Hourly pay
    Work experience placement

    SAG-AFTRA Federal Credit Union

    Burbank, CA
    8 hours ago
  • SpaceX is seeking a Facility Security Officer in Hawthorne, CA, to act as a Security Analyst. You will partner with government and engineering teams to ensure compliance with security requirements and protect sensitive programs. Ideal candidates need a high school diploma... 

    jobr.pro

    Hawthorne, CA
    4 days ago
  • $63k - $94.6k

    Northrop Grumman is seeking an Associate Industrial Security Analyst or Industrial Security Analyst in El Segundo, CA. The role involves developing and administering security programs for classified materials. Candidates must possess a Bachelor's degree or equivalent security... 
    Work at office

    Northrop Grumman

    El Segundo, CA
    3 days ago
  • A leading aerospace company in Hawthorne, California, is looking for an Information Security Analyst to manage its security operations and support security services. This role includes maintaining security tools, automating tasks, and documenting processes. The ideal candidate... 

    SpaceX

    Hawthorne, CA
    4 days ago
  • $94.2k - $141.2k

    Northrop Grumman is hiring an Industrial Security Analyst/CSSO - Level 3 or 4 for its El Segundo and Redondo Beach locations. This role involves supporting a high-profile program and managing security initiatives related to classified materials. Candidates must have a... 

    Northrop Grumman

    El Segundo, CA
    2 days ago
  • A leading aerospace company based in Hawthorne, CA is seeking an Industrial Security Analyst to join their team. This role requires a self-starter with an active Top Secret clearance to manage security analysis tasks within a dynamic environment. The responsibilities encompass... 

    SpaceX

    Hawthorne, CA
    4 days ago
  • $88k - $124k

     ...IG Compliance & Security Analyst Cooley is seeking an IG Compliance & Security Analyst to join the Information Governance & Data Privacy...  ...and responding to client security requests. This role tracks risks, monitors adherence to policies and frameworks (e.g., ISO 270... 
    Full time
    Contract work
    Temporary work
    Work experience placement
    Work at office
    Flexible hours
    Weekend work

    Cooley

    Los Angeles, CA
    1 day ago
  •  ...KEY RESPONSIBILITIES: • Assess security controls based on NIST 800-53 standards. • Conduct interviews, reviews, and testing to verify...  ...(SAW) and o Plan of Action & Milestones (POA&Ms) • Support risk assessments and vulnerability analyses. • Conduct system security... 

    RIT Solutions Inc/ Tech Dev IT/ Texperts Inc/ConceptsIT, Inc...

    Glendale, CA
    7 hours ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to VP, Lead Security Risk Analyst. Be the first to apply!